malware Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built them. The malware is a Rust binary built to… The Hacker News · Jun 12, 2026 Medium
malware 400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built them. The malware is a Rust binary built to… The Hacker News · Jun 12, 2026 Medium
phishing Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing Google has filed a lawsuit against a Chinese cybercrime network, Outsider, for using its Gemini AI agent to conduct massive smishing attacks targeting Americans. The network operates a phishing-as-a-service (PhaaS) platf… The Hacker News · Jun 12, 2026 High CHUSaiphishingsmishing
data-breach Privacy own-goal: World Cup blunder leaks Lionel Messi’s passport details A significant security blunder occurred during the Argentina World Cup warm-up match, resulting in the public release of passport details for all players on the squad. This incident highlights a failure to properly redac… Graham Cluley · Jun 12, 2026 Medium USARpassportdata-leakredaction
vulnerability phpBB forum fixes auth bypass bug lurking for a decade A 10-year-old authentication bypass vulnerability discovered in the phpBB forum software allows an attacker to log in as any user, including administrators. BleepingComputer · Jun 12, 2026 Medium
threat-intel China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade A China-linked threat actor, identified as Velvet Ant, has been discovered backdooring Linux login software for nearly a decade, gaining persistent access to a network with no direct internet connectivity. The group’s ta… The Hacker News · Jun 12, 2026 CVE-2024-20399
ransomware Ukrainian national pleads guilty to role in Conti ransomware operation A Ukrainian national extradited from Ireland to the United States last year has pleaded guilty to conspiracy charges tied to the Conti ransomware operation. BleepingComputer · Jun 12, 2026 High
data-breach Bankruptcy admin approves settlement fund of $47 million for 23andMe data breach victims A bankruptcy court has approved a $46.8 million settlement for approximately 7 million 23andMe customers affected by a 2023 data breach. Hackers accessed sensitive genetic data, including DNA Relatives profiles and Famil… The Record · Jun 12, 2026 High USdata breachdnagenetic data
threat-intel Major US surveillance program poised to lapse after legislative deadlock This article reports on a looming lapse in the US surveillance program, Section 702 of the FISA, due to legislative deadlock in Congress. The program, which allows intelligence agencies to collect communications of forei… The Record · Jun 12, 2026 High USIRCHfisasurveillanceintelligence
malware Over 400 Arch Linux packages compromised to push rootkit, infostealer Over 400 Arch Linux packages within the AUR repository have been compromised, distributing a Linux rootkit and infostealer malware designed to steal developer credentials and access tokens. The attack involved a maliciou… BleepingComputer · Jun 12, 2026 High USrootkitinfostealeraur
threat-intel In Other News: Google Security Layoffs, AudiA6 Takedown, $400 Million Coupang Fine This week’s cybersecurity news includes allegations of cover-ups by IBM and AT&T regarding foreign government-linked hacks, a data breach impacting the University of Oxford’s CareerConnect platform, and layoffs within Go… SecurityWeek · Jun 12, 2026 High CVE-2026-42271SOUNEUdata breachcyberattackddos
data-breach South Korea hits Coupang with record $409 million fine over data breach South Korea’s data protection regulator, the PIPC, has levied a record $409 million fine against Coupang, the country’s largest online retailer, following a significant data breach impacting tens of millions of customers… The Record · Jun 12, 2026 High KRdata breachauthenticationcustomer data
supply-chain Early Warning Signs of Supply-Chain Attacks Live in the Dark Web This BleepingComputer article highlights the increasing threat of supply-chain attacks, which target the tools and vendors organizations rely on. The article details how early warning signs of these attacks often appear… BleepingComputer · Jun 12, 2026 High GEsupply chaingithubcredentials
threat-intel Claude Fable 5 Doesn't Change the Mythos Security Story This article discusses Anthropic's release of Claude Fable 5 and Mythos 5 AI models, highlighting concerns about their potential to exploit vulnerabilities in software. While Anthropic has implemented safeguards like saf… Dark Reading · Jun 12, 2026 High USaicybersecurityvulnerability
threat-intel Industry Reactions to Claude Fable 5: Feedback Friday The release of Anthropic’s Claude Fable 5 AI model has sparked industry discussion regarding its potential misuse in cybersecurity and other high-risk areas. The model incorporates safeguards that automatically downgrade… SecurityWeek · Jun 12, 2026 High aicybersecuritythreat intelligence
threat-intel ISC Stormcast For Friday, June 12th, 2026 https://isc.sans.edu/podcastdetail/9970, (Fri, Jun 12th) The SANS Internet Storm Center's June 12th, 2026 Stormcast reported a heightened level of online threats and unusual network activity across various sectors. The broadcast highlighted several emerging trends, including i… SANS Internet Storm Center · Jun 12, 2026 Medium phishingdnsvulnerability
threat-intel Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code A new attack method, dubbed ‘Agentjacking,’ is exploiting vulnerabilities in AI coding agents like Claude Code and Cursor by tricking them into executing malicious code through crafted error reports sent via Sentry. This… The Hacker News · Jun 12, 2026 High aiagentjackingsentry
Microsoft fixes Windows update failures linked to WUSA installer Microsoft has fixed a known issue that caused Windows updates released since May 2025 to fail when installed via the Windows Update Standalone Installer (WUSA) from a network share. BleepingComputer · Jun 12, 2026
threat-intel Iranian Cyber Group Handala Claims Cal Water Hack The Iranian cyber threat actor Handala has claimed responsibility for a data breach targeting California Water Service (Cal Water), resulting in the theft of 5GB of data including customer information and credentials. Th… SecurityWeek · Jun 12, 2026 High USIRirandata breachcyber espionage
threat-intel Bernie Sanders’ AI Sovereign Wealth Fund Plan This article discusses Senator Bernie Sanders’ proposal for a US sovereign wealth fund to take a 50% stake in leading AI companies like Anthropic, OpenAI, and xAI. The author argues that while the goal of democratic cont… Schneier on Security · Jun 12, 2026 Medium ai governancewealth distributiontech oligarchy